Use of Hard-Coded Credentials in Tycon Systems TPDIN-Monitor-WEB3
CVE-2026-77847

7.1HIGH

Key Information:

Vendor
CVE Published:
4 September 2026

What is CVE-2026-77847?

The Tycon Systems TPDIN-Monitor-WEB3, specifically versions 2.2.9 and earlier, are affected by a security flaw that stems from the use of hard-coded credentials. This vulnerability can be exploited by attackers to intercept sensitive data or access credentials, potentially compromising the integrity and confidentiality of the system. It is critical for users to update to the latest version to mitigate this risk and enhance their security posture.

Affected Version(s)

TPDIN-Monitor-WEB3 0 <= 2.2.9

TPDIN-Monitor-WEB3 v2.4.2

References

CVSS V4

Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Abdiwelli Guled reported this vulnerability to CISA.
.